Martin Ambrus
|
d0a3aaa044
|
fix: return to server URL correction
|
2017-10-21 22:33:06 +02:00 |
|
Martin Ambrus
|
78694da32b
|
fix: player deleting & password checks work as intended
|
2017-10-21 11:30:38 +02:00 |
|
Martin Ambrus
|
c262fba318
|
fix: mysqli_num_rows() has only 1 param
|
2017-10-21 11:26:37 +02:00 |
|
Martin Ambrus
|
cd9f22e597
|
fix: sql files should not be readable by the server
|
2017-10-21 11:12:55 +02:00 |
|
Martin Ambrus
|
b63df89034
|
fix: logs work again (were missing mysqli connection identifier)
|
2017-10-21 10:45:22 +02:00 |
|
Martin Ambrus
|
9391553dcb
|
feat: front-end page names
|
2017-10-20 18:17:42 +02:00 |
|
Martin Ambrus
|
e519826621
|
feat: Admin page titles update to reflect subpages
|
2017-10-20 17:29:34 +02:00 |
|
Martin Ambrus
|
0737b5879d
|
fix: new lines in profile description stripped out and garbled
|
2017-10-20 12:56:52 +02:00 |
|
Martin Ambrus
|
cc51e9ad91
|
fix: DB class not included in some admin actions
|
2017-10-20 12:47:39 +02:00 |
|
Martin Ambrus
|
f4021d1452
|
feat: MD5 passwords exchanged for bcrypt ones
|
2017-10-20 12:31:27 +02:00 |
|
Martin Ambrus
|
606d0a6ad2
|
fix: DB class not included
|
2017-10-20 11:04:28 +02:00 |
|
Martin Ambrus
|
6b3b0cf829
|
fix: newsbox1 best player statistics to include Admin if allowed
|
2017-10-20 10:04:55 +02:00 |
|
Martin Ambrus
|
f46b94b832
|
fix: system message can contain quotes and no longer inserts BOM
|
2017-10-20 01:31:58 +02:00 |
|
Martin Ambrus
|
33143e9405
|
fix: missing mysqli_result() function for the winning page
|
2017-10-20 01:08:35 +02:00 |
|
Martin Ambrus
|
590892348a
|
fix: potential SQL injection
|
2017-10-20 00:52:47 +02:00 |
|
Martin Ambrus
|
b3ae55f48a
|
fix: db query function should not have duplicate escaping
|
2017-10-20 00:49:39 +02:00 |
|
Martin Ambrus
|
9d997ed8d4
|
fix: attacker name for captured Natar village random attacks is ??
|
2017-10-20 00:31:04 +02:00 |
|
Martin Ambrus
|
c3ee6a484f
|
fix: Database class not included in Admin module action
|
2017-10-20 00:10:48 +02:00 |
|
Martin Ambrus
|
69902b4af4
|
fix: Admin Map shows Natars when Player villages are not showing
|
2017-10-19 23:56:07 +02:00 |
|
Martin Ambrus
|
51cfe8fa3f
|
fix: Multihunter village no longer shows as Natar on Map in Admin
|
2017-10-19 23:47:41 +02:00 |
|
Martin Ambrus
|
19bc403183
|
fix: Admin map correctly showing natar villages
|
2017-10-19 21:32:58 +02:00 |
|
Martin Ambrus
|
331885a110
|
fix: remove SQL injections in Admin
|
2017-10-19 21:17:11 +02:00 |
|
Martin Ambrus
|
529bb2209c
|
fix: statistics are counting again
|
2017-10-19 15:04:16 +02:00 |
|
Martin Ambrus
|
1108054e52
|
fix: application/json content type from PHP handled correctly in JS
|
2017-10-19 10:42:30 +02:00 |
|
Martin Ambrus
|
dd9118bb31
|
fix: manual content-type for map scroll
|
2017-10-19 10:38:47 +02:00 |
|
Martin Ambrus
|
383aa36e54
|
fix: Multihunter login can no longer build fields above level 20
|
2017-10-18 12:50:45 +02:00 |
|
Martin Ambrus
|
4c2c769a44
|
chore: ToDo and formatting
|
2017-10-18 12:43:37 +02:00 |
|
Martin Ambrus
|
6d9a93a4d4
|
fix: typo in escaping function name
|
2017-10-18 11:17:50 +02:00 |
|
Martin Ambrus
|
a9f67cbb1c
|
fix: units training now works again
|
2017-10-18 10:54:12 +02:00 |
|
Martin Ambrus
|
d76669cb42
|
fix: last batch of manual INT typecastings
|
2017-10-18 01:11:25 +02:00 |
|
Martin Ambrus
|
6f3973748c
|
fix: more manual typecastings
|
2017-10-18 00:59:49 +02:00 |
|
Martin Ambrus
|
51dad48fdb
|
chore: a few TODOs
|
2017-10-18 00:33:23 +02:00 |
|
Martin Ambrus
|
057f713528
|
fix: a LOT of manual typecastings for DB values that should be INTs
|
2017-10-18 00:33:03 +02:00 |
|
Martin Ambrus
|
96cd79adc9
|
chore: PHPStorm settings ignored
|
2017-10-17 19:18:08 +02:00 |
|
Martin Ambrus
|
b7d3a0e008
|
fix: proper count of attacks and troops
|
2017-10-17 19:17:40 +02:00 |
|
Martin Ambrus
|
4ef65860dd
|
fix: this method should really not be escaped...
|
2017-10-17 18:49:25 +02:00 |
|
Martin Ambrus
|
0701d211c4
|
chore: new ToDo
|
2017-10-17 18:08:14 +02:00 |
|
Martin Ambrus
|
fb8a7fcd74
|
fix: "generated in" fix for Rally Point
|
2017-10-17 16:18:15 +02:00 |
|
Martin Ambrus
|
2b12f16b3d
|
fix: more sql injection escapes...
|
2017-10-17 16:13:06 +02:00 |
|
Martin Ambrus
|
17fcadc3d1
|
chore: version bump & readme update
|
2017-10-17 13:52:22 +02:00 |
|
Martin Ambrus
|
c32ef23f8b
|
fix: assigning link to forum alliance works now
|
2017-10-17 13:48:23 +02:00 |
|
Martin Ambrus
|
37d14cd804
|
chore: a ToDo was fixed with security tightening... yay :)
|
2017-10-17 13:46:28 +02:00 |
|
Martin Ambrus
|
d23999abc1
|
chore: a new ToDo ... this one is really a stupid one :))
|
2017-10-17 13:45:36 +02:00 |
|
Martin Ambrus
|
49fcd5d983
|
fix: no more errors when alliance is in no wars
|
2017-10-17 13:43:02 +02:00 |
|
Martin Ambrus
|
71dbed0571
|
fix: missed-out parameters escaping added
|
2017-10-17 13:41:12 +02:00 |
|
Martin Ambrus
|
583312103e
|
chore: a ToDo task :)
|
2017-10-17 13:26:03 +02:00 |
|
Martin Ambrus
|
ee467fe734
|
fix: sanitization of username in session where used directly in queries
|
2017-10-17 13:18:26 +02:00 |
|
Martin Ambrus
|
ac5d3538f8
|
fix: mysqli_error needs MySQLi connection as parameter
|
2017-10-17 13:05:13 +02:00 |
|
Martin Ambrus
|
6ceb273163
|
chore: Eclipse settings into gitignore
|
2017-10-17 12:59:37 +02:00 |
|
Martin Ambrus
|
80c70f0f13
|
fix: no double-escaping of SQL queries for login
|
2017-10-17 12:59:03 +02:00 |
|